Knowledge Base
The VMware Knowledge Base provides support solutions, error messages and troubleshooting guides

|
vShield Zones OVF import fails and results in an error
Details
A vShield Zones OVF import fails with Host did not have any virtual network defined. This failure occurs in a vCenter Server instance where a vNetwork Distributed Switch (vNDS) is deployed without a vSwitch or an available port group.
The following scenario results in a failed vShield Zones installation:
The following scenario results in a failed vShield Zones installation:
- Create a datacenter under the Host & Clusters node.
- Create an ESX host in the datacenter.
- Create a vSwitch with a physical NIC and a port group for only the Service Console and VMkernel. No additional port groups are present on the vSwitch.
- Create a vNetwork Distributed Switch with a dvPort Group (default settings) and at least one physical NIC for uplink.
- Deploy vShield Zones according to "Installing a vShield Manually on a vNetwork Distributed Switch" in the vShield Zones Administration Guide. The following error message appears: Host did not have any virtual network defined.
Solution
To install vShield Zones in a vNDS environment, you must have a vSwitch with a port group that does not contain the service console and VMKernel.
If a vSwitch does not exist, perform the following steps to deploy vShield Zones successfully:
- Create a vSwitch on an ESX host.
- Create a port group on the vSwitch for vShield Zones deployment. This port group must not contain the service console or VMKernel.
- Install vShield Zones according to "Installing a vShield Manually on a vNetwork Distributed Switch" in the vShield Zones Administration Guide.
- After installing the vShield Zones appliances, you can delete the port group and vSwitch.
If a vSwitch exists with only one port group assigned to the service console and VMKernel, perform the following steps to deploy vShield Zones successfully:
- Create a port group (with default settings) on the vSwitch for vShield Zones. This port group must not contain the service console or VMKernel.
- Install vShield Zones according to "Installing a vShield Manually on a vNetwork Distributed Switch" in the vShield Zones Administration Guide.
- After installing the vShield Zones virtual appliances, you can delete the port group.
The vShield Zones virtual appliances are packaged in OVF files. Do not deploy vShield Zones virtual appliances by using Converter, as Converter might lose important settings during the conversion process
Request a Product Feature
To request a new product feature or to provide feedback on a VMware product, please visit the Request a Product Feature page.
Actions
- KB Article:
- Updated:
- Categories:
- Product Family:
- Products:
- Product Versions:

